CVE-2025-64012
EUVD-2025-20377016.12.2025, 16:15
InvoicePlane commit debb446c is vulnerable to Incorrect Access Control. The invoices/view handler fails to verify ownership before returning invoice data.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| invoiceplane | invoiceplane | 1.6.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration